Security and Vulnerability Management Software

Security and vulnerability management is a comprehensive set of solutions that focus on allowing organizations to determine, interpret, and improve their risk posture. Products in this market include those that create, monitor, and enforce security policy; determine the configuration, structure, and attributes for a given device; perform assessments and vulnerability scanning; provide vulnerability remediation and patch management; aggregate and correlate security logs; and provide management of various security technologies from a single point of control. The following are representative vendors and products in this market:

• ArcSight (ArcSight ESM and ArcSight Discovery)
• Computer Associates (eTrust Security Command Center and eTrust Vulnerability Manager)
• IBM (IBM Tivoli Risk Manager and IBM Tivoli Security Compliance Manager)
• NetIQ (Security Manager and Vulnerability Manager)
• PatchLink (PATCHLINK UPDATE)
• Qualys (QualysGUARD)
• Symantec (Symantec Enterprise Security Management, Symantec Incident Manager, and NetRecon)

 
Copyright 2006 IDC - Global Headquarters: 5 Speen Street Framingham, MA 01701 USA - P. 508.872.6200 - F. 508.935.4015 - www.idc.com